Details
-
Task
-
Resolution: Fixed
-
P2: Important
-
None
-
None
-
None
-
-
2
-
Foundation Sprint 107
Description
Analyse QAbstractOAuthPrivate::generateRandomString(quint8 length) and possibly
change it to use QRandomGenerator with more secure seeding than toMSecsSinceEpoch().
These nonces are used by OIDC, as well as the 'state' in regular OAuth flows, and in future by PKCE
Attachments
Issue Links
- clones
-
QTBUG-124336 [OAuth OIDC] Add nonce support
- Closed
- is cloned by
-
QTBUG-124338 [OAuth] Support private URI scheme redirection (Android, iOS)
- Closed